CVE-2016-2375

MEDIUM

Pidgin < 2.10.12 - Out-of-Bounds Read

Title source: rule

Description

An exploitable out-of-bounds read exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT contact information sent from the server can result in memory disclosure.

Scores

CVSS v3 5.3
EPSS 0.0048
EPSS Percentile 64.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Classification

CWE
CWE-125
Status published

Affected Products (6)

pidgin/pidgin < 2.10.12
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
debian/debian_linux
Pidgin/Pidgin < 2.10.11

Timeline

Published Jan 06, 2017
Tracked Since Feb 18, 2026